Date first seen Duration Proto Src IP Addr:Port Dst IP Addr:Port Packets Bytes Flows 2025-11-25 05:59:36.846 00:00:10.341 TCP 1.101.0.1:3000 -> 23.104.0.1:57412 10 6452 1 2025-11-25 06:00:37.228 00:00:10.327 TCP 1.101.0.1:3000 -> 23.104.0.1:51860 10 6452 1 2025-11-25 06:01:37.590 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:54908 10 6452 1 2025-11-25 05:58:05.942 00:05:01.137 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 05:58:05.939 00:05:01.142 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:02:35.429 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:02:35.351 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:02:35.127 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:02:35.347 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:02:35.356 00:00:00.025 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:02:37.998 00:00:10.325 TCP 1.101.0.1:3000 -> 23.104.0.1:49530 10 6452 1 2025-11-25 06:03:38.362 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:33288 10 6452 1 2025-11-25 06:04:38.731 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:44154 10 6452 1 2025-11-25 06:05:39.135 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:37846 10 6452 1 2025-11-25 06:06:39.533 00:00:10.337 TCP 1.101.0.1:3000 -> 23.104.0.1:39408 10 6452 1 2025-11-25 06:07:35.394 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:07:35.415 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:07:35.269 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:07:35.312 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:07:35.365 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:07:39.922 00:00:10.361 TCP 1.101.0.1:3000 -> 23.104.0.1:41158 10 6452 1 2025-11-25 06:04:05.945 00:05:01.136 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 06:04:05.943 00:05:01.140 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:08:40.321 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:50054 10 6452 1 2025-11-25 06:09:40.731 00:00:10.324 TCP 1.101.0.1:3000 -> 23.104.0.1:54438 10 6452 1 2025-11-25 06:10:41.108 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:35268 10 6452 1 2025-11-25 06:11:41.514 00:00:10.374 TCP 1.101.0.1:3000 -> 23.104.0.1:35358 10 6452 1 2025-11-25 06:12:35.570 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:12:35.590 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:12:35.411 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:12:35.425 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:12:35.494 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:12:41.924 00:00:10.332 TCP 1.101.0.1:3000 -> 23.104.0.1:46924 10 6452 1 2025-11-25 06:13:42.291 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:60730 10 6452 1 2025-11-25 06:10:05.947 00:05:01.139 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:10:05.949 00:05:01.134 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 06:14:42.695 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:39066 10 6452 1 2025-11-25 06:15:43.106 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:40740 10 6452 1 2025-11-25 06:16:43.472 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:49708 10 6452 1 2025-11-25 06:17:35.516 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:17:35.371 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:17:35.513 00:00:00.024 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:17:35.323 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:17:35.595 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:17:43.874 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:58952 10 6452 1 2025-11-25 06:18:44.279 00:00:10.383 TCP 1.101.0.1:3000 -> 23.104.0.1:35104 10 6452 1 2025-11-25 06:19:44.696 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:55500 10 6452 1 2025-11-25 06:16:05.952 00:05:01.135 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:16:05.955 00:05:01.130 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 06:20:45.114 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:40236 10 6452 1 2025-11-25 06:21:45.502 00:00:10.322 TCP 1.101.0.1:3000 -> 23.104.0.1:53292 10 6452 1 2025-11-25 06:22:35.689 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:22:35.691 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:22:35.260 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:22:35.606 00:00:00.021 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:22:35.654 00:00:00.021 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:22:45.864 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:37680 10 6452 1 2025-11-25 06:23:46.233 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:58594 10 6452 1 2025-11-25 06:24:46.598 00:00:10.367 TCP 1.101.0.1:3000 -> 23.104.0.1:50322 10 6452 1 2025-11-25 06:25:46.997 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:59578 10 6452 1 2025-11-25 06:22:05.955 00:05:01.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 06:22:05.953 00:05:01.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:26:47.409 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:35870 10 6452 1 2025-11-25 06:27:35.878 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:27:35.547 00:00:00.024 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:27:35.709 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:27:35.796 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:27:35.551 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:27:47.814 00:00:10.364 TCP 1.101.0.1:3000 -> 23.104.0.1:57458 10 6452 1 2025-11-25 06:28:48.218 00:00:10.326 TCP 1.101.0.1:3000 -> 23.104.0.1:40784 10 6452 1 2025-11-25 06:29:48.580 00:00:10.369 TCP 1.101.0.1:3000 -> 23.104.0.1:37330 10 6452 1 2025-11-25 06:30:48.988 00:00:10.373 TCP 1.101.0.1:3000 -> 23.104.0.1:56742 10 6452 1 2025-11-25 06:31:49.401 00:00:10.359 TCP 1.101.0.1:3000 -> 23.104.0.1:34918 10 6452 1 2025-11-25 06:28:05.956 00:05:01.138 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 06:28:05.953 00:05:01.143 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:32:35.944 00:00:00.023 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:32:35.771 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:32:35.705 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:32:35.901 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:32:35.787 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:32:49.798 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:45716 10 6452 1 2025-11-25 06:33:50.207 00:00:10.371 TCP 1.101.0.1:3000 -> 23.104.0.1:46850 10 6452 1 2025-11-25 06:34:50.617 00:00:10.355 TCP 1.101.0.1:3000 -> 23.104.0.1:59110 10 6452 1 2025-11-25 06:35:51.017 00:00:10.320 TCP 1.101.0.1:3000 -> 23.104.0.1:52194 10 6452 1 2025-11-25 06:36:51.377 00:00:10.363 TCP 1.101.0.1:3000 -> 23.104.0.1:39676 10 6452 1 2025-11-25 06:37:35.905 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:37:35.942 00:00:00.021 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:37:35.958 00:00:00.023 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:37:35.965 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:37:36.043 00:00:00.023 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:37:51.776 00:00:10.328 TCP 1.101.0.1:3000 -> 23.104.0.1:42862 10 6452 1 2025-11-25 06:34:05.954 00:05:01.145 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:34:05.956 00:05:01.140 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 06:38:52.145 00:00:10.338 TCP 1.101.0.1:3000 -> 23.104.0.1:36276 10 6452 1 2025-11-25 06:39:52.522 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:54240 10 6452 1 2025-11-25 06:40:52.926 00:00:11.543 TCP 1.101.0.1:3000 -> 23.104.0.1:33770 10 6452 1 2025-11-25 06:41:54.512 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:47498 10 6452 1 2025-11-25 06:42:35.652 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:42:35.901 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:42:35.984 00:00:00.024 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:42:36.086 00:00:00.022 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:42:36.037 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:42:54.924 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:42048 10 6452 1 2025-11-25 06:43:55.342 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:37944 10 6452 1 2025-11-25 06:40:05.960 00:05:01.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 06:40:05.957 00:05:01.151 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:44:55.749 00:00:10.329 TCP 1.101.0.1:3000 -> 23.104.0.1:35130 10 6452 1 2025-11-25 06:45:56.118 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:48254 10 6452 1 2025-11-25 06:46:56.523 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:48956 10 6452 1 2025-11-25 06:47:35.891 00:00:00.024 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:47:35.967 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:47:36.051 00:00:00.021 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:47:36.165 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:47:36.085 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:47:56.930 00:00:10.376 TCP 1.101.0.1:3000 -> 23.104.0.1:38446 10 6452 1 2025-11-25 06:48:57.340 00:00:10.377 TCP 1.101.0.1:3000 -> 23.104.0.1:47652 10 6452 1 2025-11-25 06:46:05.959 00:05:01.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:49:57.759 00:00:10.382 TCP 1.101.0.1:3000 -> 23.104.0.1:56484 10 6452 1 2025-11-25 06:46:05.962 00:05:01.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 06:50:58.185 00:00:10.331 TCP 1.101.0.1:3000 -> 23.104.0.1:55022 10 6452 1 2025-11-25 06:51:58.557 00:00:10.370 TCP 1.101.0.1:3000 -> 23.104.0.1:42422 10 6452 1 2025-11-25 06:52:36.287 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:52:36.196 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:52:36.146 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:52:36.031 00:00:00.023 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:52:36.230 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:52:58.967 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:36928 10 6452 1 2025-11-25 06:53:59.371 00:00:10.368 TCP 1.101.0.1:3000 -> 23.104.0.1:43940 10 6452 1 2025-11-25 06:54:59.783 00:00:10.366 TCP 1.101.0.1:3000 -> 23.104.0.1:38600 10 6452 1 2025-11-25 06:56:00.190 00:00:10.365 TCP 1.101.0.1:3000 -> 23.104.0.1:47416 10 6452 1 2025-11-25 06:52:05.961 00:05:01.145 TCP 179.21.23.21:38570 -> 179.21.23.23:179 12 738 1 2025-11-25 06:52:05.958 00:05:01.150 TCP 179.21.23.23:179 -> 179.21.23.21:38570 12 738 1 2025-11-25 06:57:00.596 00:00:10.372 TCP 1.101.0.1:3000 -> 23.104.0.1:50902 10 6452 1 2025-11-25 06:57:36.349 00:00:00.021 ICMP 21.0.198.2:0 -> 27.107.0.1:8.0 3 252 1 2025-11-25 06:57:36.257 00:00:00.022 ICMP 1.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:57:36.432 00:00:00.022 ICMP 21.0.198.2:0 -> 23.107.0.1:8.0 3 252 1 2025-11-25 06:57:36.514 00:00:00.022 ICMP 21.0.198.2:0 -> 32.102.0.1:8.0 3 252 1 2025-11-25 06:57:36.515 00:00:00.022 ICMP 23.107.0.1:0 -> 21.0.198.2:0.0 3 252 1 2025-11-25 06:58:01.019 00:00:10.362 TCP 1.101.0.1:3000 -> 23.104.0.1:48728 10 6452 1 Summary: total flows: 139, total bytes: 410548, total packets: 1010, avg bps: 910, avg pps: 0, avg bpp: 406 Time window: 2025-11-25 05:58:05 - 2025-11-25 06:58:11 Total flows processed: 139, passed: 139, Blocks skipped: 0, Bytes read: 14520 Sys: 0.0040s User: 0.0016s Wall: 0.0016s flows/second: 88819.1 Runtime: 0.0016s